(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [SNMP-In-UDP] => (Allow) %SystemRoot%\system32\snmp.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [SNMP-Out-UDP] => (Allow) %SystemRoot%\system32\snmp.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [SNMP-In-UDP-NoScope] => (Allow) %SystemRoot%\system32\snmp.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [SNMP-Out-UDP-NoScope] => (Allow) %SystemRoot%\system32\snmp.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [UDP Query User{E5C0101A-38E8-4211-AECE-63ED873D7C73}C:\program files (x86)\world of warcraft\_retail_\utils\wowvoiceproxy.exe] => (Allow) C:\program files (x86)\world of warcraft\_retail_\utils\wowvoiceproxy.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{2CE5288E-BB97-4ED9-BF80-CE305BF7D1B3}C:\program files (x86)\world of warcraft\_retail_\utils\wowvoiceproxy.exe] => (Allow) C:\program files (x86)\world of warcraft\_retail_\utils\wowvoiceproxy.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [UDP Query User{FD74DFC6-A2D4-4014-B23A-5DE9E966ECDE}E:\allegorithmic\substance painter\substance painter.exe] => (Allow) E:\allegorithmic\substance painter\substance painter.exe (Allegorithmic -> Allegorithmic) [File not signed]
FirewallRules: [TCP Query User{3957E0C4-666B-4047-85D3-B78457658D33}E:\allegorithmic\substance painter\substance painter.exe] => (Allow) E:\allegorithmic\substance painter\substance painter.exe (Allegorithmic -> Allegorithmic) [File not signed]
FirewallRules: [UDP Query User{9C4D7925-BE60-40ED-9253-4D9090F4E585}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{1DD80A04-5450-4A51-9DFD-75907B800A9A}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{D966DE68-C7E4-47B8-8E11-99E9AA106928}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqfxt08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{5DEE59AB-D1F9-48EE-AAB9-52D96B7241AF}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxs08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{4907D086-2533-4261-9F8D-BC4AD0D4652A}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpzwiz01.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{C87BFE46-265D-4582-A83D-23D6EC35E4FC}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{ED60CE49-98D6-4FAA-A6C5-406714C6F198}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposfx08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{CC8F8BC4-46BD-4080-911A-0298198AC4B0}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxm08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{481C136F-A521-4FA7-81C5-346FA17B0615}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{068134BE-4A61-4D3B-BBDB-15B5F754AD9C}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{2945187A-2ED8-48D7-A9D4-BFB39FC7EA33}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{7AFC3AF4-F185-4489-BF38-4C85915E2363}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqnrs08.exe (Hewlett-Packard Co.) [File not signed]
FirewallRules: [{53053F5E-6CCC-4695-A6B7-363EBC08DD03}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{6E938C60-989A-4235-8A04-EC064B0C216C}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{0B1E12F7-A1EC-4ED5-B0FD-769A4FEDD963}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{0029C7D3-FC75-40E9-B215-CAE110018903}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{695FF91B-BD81-40D2-A872-10DC29667EC5}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{9990B512-9033-4632-962B-9E6F0FF9B62F}] => (Allow) E:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{A71B3A14-D9EE-417D-9F9A-F76D97237122}] => (Allow) E:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [UDP Query User{ECF3A544-D274-46D2-8F9F-B3D463C148E5}E:\hearthstone\hearthstone.exe] => (Allow) E:\hearthstone\hearthstone.exe (Blizzard Entertainment, Inc. -> )
FirewallRules: [TCP Query User{86C54DC8-8370-4C9F-9F01-6726A94E9883}E:\hearthstone\hearthstone.exe] => (Allow) E:\hearthstone\hearthstone.exe (Blizzard Entertainment, Inc. -> )
FirewallRules: [UDP Query User{F99A2CE3-FCC6-4B73-AD59-7A8EA5E65249}C:\users\bogdan placintescu\appdata\roaming\curse client\bin\electron\twitchui.exe] => (Allow) C:\users\bogdan placintescu\appdata\roaming\curse client\bin\electron\twitchui.exe (Twitch Interactive, Inc. -> Twitch Interactive, Inc.)
FirewallRules: [TCP Query User{5D9DAE3E-5AFD-43F4-B795-1189C4A58F4B}C:\users\bogdan placintescu\appdata\roaming\curse client\bin\electron\twitchui.exe] => (Allow) C:\users\bogdan placintescu\appdata\roaming\curse client\bin\electron\twitchui.exe (Twitch Interactive, Inc. -> Twitch Interactive, Inc.)
FirewallRules: [{E4E70CA4-79AE-444D-872B-185233AEF637}] => (Allow) E:\Steam\steamapps\common\DarkestDungeon\_windows\Darkest.exe () [File not signed]
FirewallRules: [{01ACA498-42FE-4B6E-A6B5-28B083059BFC}] => (Allow) E:\Steam\steamapps\common\DarkestDungeon\_windows\Darkest.exe () [File not signed]
FirewallRules: [{FBE47FAB-BF29-4DA2-AC96-AB571DF722C6}] => (Allow) E:\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe () [File not signed]
FirewallRules: [{8C9E912F-ED6A-4ABD-A8C4-6AB3307F76AF}] => (Allow) E:\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe () [File not signed]
FirewallRules: [{DA4B9BB6-B5BC-4052-B58B-AE24B46834DC}] => (Allow) E:\Steam\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI_DX12.exe (Firaxis Games) [File not signed]
FirewallRules: [{1F119452-E557-4445-AADC-DB4D7AB6D0FD}] => (Allow) E:\Steam\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI_DX12.exe (Firaxis Games) [File not signed]
FirewallRules: [{1952CCE2-F0E4-4479-AD90-DB5BE1E060BC}] => (Allow) E:\Steam\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI.exe (Firaxis Games) [File not signed]
FirewallRules: [{3082CAAF-25FD-49C4-89D9-1C1BC1E1826E}] => (Allow) E:\Steam\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI.exe (Firaxis Games) [File not signed]
FirewallRules: [{936D8974-7DBC-4C35-8998-F8175679F357}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{0B92DCAA-4F9A-4695-BF59-7A3773C9CDC2}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [UDP Query User{A3D554A6-B6EB-4BA0-8D81-4351CACDA310}E:\allegorithmic\substance painter\substance painter.exe] => (Allow) E:\allegorithmic\substance painter\substance painter.exe (Allegorithmic -> Allegorithmic) [File not signed]
FirewallRules: [TCP Query User{80888C66-AF42-4799-9512-66ADEBB887CD}E:\allegorithmic\substance painter\substance painter.exe] => (Allow) E:\allegorithmic\substance painter\substance painter.exe (Allegorithmic -> Allegorithmic) [File not signed]
FirewallRules: [{9952BCF0-541F-46C5-BFD1-A92EB03D4746}] => (Allow) C:\Users\Bogdan Placintescu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{CC61D9BD-667F-4F68-B606-700EED46CF60}] => (Allow) C:\Users\Bogdan Placintescu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{DC8C7E3C-63F8-4FAC-9907-3FE424E373BE}] => (Allow) E:\Steam\steamapps\common\Prey\Binaries\Danielle\x64\Release\Prey.exe (Arkane Studios) [File not signed]
FirewallRules: [{900E8856-8C4C-4A6D-87BA-A8F4440DE3E4}] => (Allow) E:\Steam\steamapps\common\Prey\Binaries\Danielle\x64\Release\Prey.exe (Arkane Studios) [File not signed]
FirewallRules: [{24896A34-B233-48AC-BAF3-8203A0F4D79B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{A5AA78BA-A7F5-48DC-BD9F-AA26CCA58F8B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{4E60C5B0-D6D4-4AF7-88F8-EF70749DB68E}] => (Allow) LPort=5000
FirewallRules: [{E57768F3-6BEA-4CE5-BE54-3FDB436B596F}] => (Allow) LPort=59586
FirewallRules: [{E0F90972-3518-49ED-9EE0-5B9C6967A7CC}] => (Allow) LPort=1688
FirewallRules: [UDP Query User{8D4E3803-0276-4B3E-BE62-9F670DB170C6}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [TCP Query User{FF1846EF-3B7B-4B6F-B5B8-2D60171C9811}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [{59DCFC2A-2D8F-49E1-A7DE-42CC69474DEF}] => (Allow) E:\Steam\steamapps\common\SunlessSea\Sunless Sea.exe () [File not signed]
FirewallRules: [{BB8B0F52-9E5A-4896-B1C2-98DFFFC6A49B}] => (Allow) E:\Steam\steamapps\common\SunlessSea\Sunless Sea.exe () [File not signed]
FirewallRules: [{9DC32FCD-7E69-4A9B-9EBD-D97CA5F19956}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{FC8D9118-5615-4281-AF76-8013F0AE2904}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{A0468DAA-07B3-45B7-ABC8-24CD6D6E5152}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{1559B79B-484E-4E2E-92AE-54208A476BB6}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [UDP Query User{9D61AE8C-4AF1-4555-BBED-29F5668210C3}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{3C8D00F2-898D-42A0-B861-51A3F5F57552}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [UDP Query User{F145B7B7-30AC-4BBD-989D-B22CA4F8B266}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [TCP Query User{2CC356DB-914A-41AB-A2A4-856146BAC8BC}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [{1AAC8385-A436-4925-AAFE-05465E6CC250}] => (Allow) LPort=26789
FirewallRules: [{19FCCD91-9284-43E7-B2AF-620E32C1DD75}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{06BD4593-FDDE-4BD9-8302-202A18045465}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{5E16FF0C-0EDF-4622-B2A5-2101E0228593}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{7609B846-BBE6-4715-9E61-666EE3E815DC}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{76E51E45-2754-4024-9D46-1F580539CE52}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{890A1116-5FD0-4B26-9EBC-E2011384D357}] => (Allow) E:\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{492BCAF6-351D-474F-82D3-5F0D931FE66E}] => (Allow) E:\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{E6638D4B-88E8-4C06-ACCF-7F716E7312DB}] => (Allow) C:\Users\Bogdan Placintescu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{DCE10A1A-9848-4A34-98F4-84C2B8557C4B}] => (Allow) C:\Users\Bogdan Placintescu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{BC49470B-7C7B-409B-BABA-824145009F18}] => (Allow) C:\Users\Bogdan Placintescu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{60B48FF1-C0EA-4EE6-B83F-3DC2E0E1D1B8}] => (Allow) C:\Users\Bogdan Placintescu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{E9487C1B-7085-432E-9E38-549F4DD9FA8A}] => (Allow) C:\Users\Bogdan Placintescu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{42B0B290-E2AD-4A8D-BFB7-8AD2C604B41B}] => (Allow) C:\Users\Bogdan Placintescu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{9640246B-2365-43B7-B35A-2732E13EDB1F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [TCP Query User{D69F3DA6-368F-4716-9D8A-8ABFDA34CD28}E:\steam\steamapps\common\don't starve together\bin\dontstarve_dedicated_server_nullrenderer.exe] => (Allow) E:\steam\steamapps\common\don't starve together\bin\dontstarve_dedicated_server_nullrenderer.exe () [File not signed]
FirewallRules: [UDP Query User{10F50A44-94F4-4C44-85E8-530B3907495C}E:\steam\steamapps\common\don't starve together\bin\dontstarve_dedicated_server_nullrenderer.exe] => (Allow) E:\steam\steamapps\common\don't starve together\bin\dontstarve_dedicated_server_nullrenderer.exe () [File not signed]
FirewallRules: [TCP Query User{928EA6DB-F4FF-4350-8B44-EB7298AD002B}E:\hearthstone\hearthstone.exe] => (Allow) E:\hearthstone\hearthstone.exe (Blizzard Entertainment, Inc. -> )
FirewallRules: [UDP Query User{98542EE1-D763-4AA2-A239-0711A3C0E571}E:\hearthstone\hearthstone.exe] => (Allow) E:\hearthstone\hearthstone.exe (Blizzard Entertainment, Inc. -> )
FirewallRules: [{73A8ACCD-AF33-4A0A-A902-42DAC0D1D189}] => (Allow) E:\Program Files (x86)\Origin Games\Spore\Sporebin\SporeApp.exe (Electronic Arts -> Maxis, a division of Electronic Arts Inc.)
FirewallRules: [{76DF158C-D7CD-45B8-893D-2B3536E6E2AA}] => (Allow) E:\Program Files (x86)\Origin Games\Spore\Sporebin\SporeApp.exe (Electronic Arts -> Maxis, a division of Electronic Arts Inc.)
FirewallRules: [{57EE87AD-7463-4510-9D60-FEEDC0661E2D}] => (Allow) E:\Steam\steamapps\common\Pyre\x64\Pyre.exe (Supergiant Games, LLC) [File not signed]
FirewallRules: [{70CB7038-842A-4350-B9B4-A974F4712BF3}] => (Allow) E:\Steam\steamapps\common\Pyre\x64\Pyre.exe (Supergiant Games, LLC) [File not signed]
FirewallRules: [{3F9ECFE0-0452-4BE8-9FDD-68970A4D9858}] => (Allow) E:\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )
FirewallRules: [{BFF0AEA2-542C-47F6-9083-868EBA67C083}] => (Allow) E:\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )
FirewallRules: [TCP Query User{6AC7E872-90D8-48B4-B60C-AADA6EEC24AB}C:\program files (x86)\obs-studio\bin\64bit\obs64.exe] => (Allow) C:\program files (x86)\obs-studio\bin\64bit\obs64.exe (Open Source Developer, Hugh Bailey -> )
FirewallRules: [UDP Query User{D883269A-3442-4AE7-882A-E47BFAF896C0}C:\program files (x86)\obs-studio\bin\64bit\obs64.exe] => (Allow) C:\program files (x86)\obs-studio\bin\64bit\obs64.exe (Open Source Developer, Hugh Bailey -> )
FirewallRules: [TCP Query User{049D4D41-1EE2-47E3-9C5A-8C2392366AF7}C:\users\bogdan placintescu\appdata\roaming\curse client\bin\electron\twitchui.exe] => (Allow) C:\users\bogdan placintescu\appdata\roaming\curse client\bin\electron\twitchui.exe (Twitch Interactive, Inc. -> Twitch Interactive, Inc.)
FirewallRules: [UDP Query User{E3A13891-1733-4D5B-85EB-DBDA7D565D69}C:\users\bogdan placintescu\appdata\roaming\curse client\bin\electron\twitchui.exe] => (Allow) C:\users\bogdan placintescu\appdata\roaming\curse client\bin\electron\twitchui.exe (Twitch Interactive, Inc. -> Twitch Interactive, Inc.)
FirewallRules: [{B6C54721-004D-4B49-869F-3C55FA46E6ED}] => (Allow) E:\Steam\steamapps\common\SpeedRunners\SpeedRunners.exe (DoubleDutch Games) [File not signed]
FirewallRules: [{A8DE337F-60FB-40A7-97D4-23965DF620AB}] => (Allow) E:\Steam\steamapps\common\SpeedRunners\SpeedRunners.exe (DoubleDutch Games) [File not signed]
FirewallRules: [{A58CE737-0A1D-405A-BDD2-435CB91B6CF9}] => (Allow) E:\Steam\steamapps\common\SpaceChem\SpaceChem.exe (Zachtronics Industries) [File not signed]
FirewallRules: [{15E339B0-6723-486B-A4A7-4600A892A611}] => (Allow) E:\Steam\steamapps\common\SpaceChem\SpaceChem.exe (Zachtronics Industries) [File not signed]
FirewallRules: [TCP Query User{C5627A92-75C6-41D6-9C41-071FB029B00E}C:\users\bogdan placintescu\appdata\local\discord\app-0.0.304\discord.exe] => (Allow) C:\users\bogdan placintescu\appdata\local\discord\app-0.0.304\discord.exe (Discord Inc. -> Discord Inc.)
FirewallRules: [UDP Query User{7FA54D8B-0DBB-4E91-99BF-C99869A991A9}C:\users\bogdan placintescu\appdata\local\discord\app-0.0.304\discord.exe] => (Allow) C:\users\bogdan placintescu\appdata\local\discord\app-0.0.304\discord.exe (Discord Inc. -> Discord Inc.)
FirewallRules: [{CDA9BD85-7908-401F-8C37-31FA0AF75CE3}] => (Allow) E:\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{873DB2B0-9710-4C11-BDA6-229B3FA9C22E}] => (Allow) E:\Steam\steamapps\common\Aseprite\Aseprite.exe (David Capello -> )
FirewallRules: [{02F947AB-AFA7-40F7-9B5C-8E99FC007F4F}] => (Allow) E:\Steam\steamapps\common\Aseprite\Aseprite.exe (David Capello -> )
FirewallRules: [{64FF1E53-93B6-4B26-AE2C-528F1B3F81EF}] => (Allow) E:\Steam\steamapps\common\Reigns\Reigns.exe () [File not signed]
FirewallRules: [{64C4B4D8-FDB2-49E9-AEBA-27FCB2B2030C}] => (Allow) E:\Steam\steamapps\common\Reigns\Reigns.exe () [File not signed]
FirewallRules: [{4AA002D8-248C-4FC7-8CB1-CBF24B55A023}] => (Allow) E:\Steam\steamapps\common\Hollow Knight\hollow_knight.exe () [File not signed]
FirewallRules: [{437AEFAC-F645-43C6-87B0-F01F22C0FBD8}] => (Allow) E:\Steam\steamapps\common\Hollow Knight\hollow_knight.exe () [File not signed]
FirewallRules: [TCP Query User{01CC4CD7-CACE-426D-9841-6A5F920B05D7}E:\adobe\adobe premiere pro cc 2019\adobe premiere pro.exe] => (Allow) E:\adobe\adobe premiere pro cc 2019\adobe premiere pro.exe (Adobe Systems Incorporated -> Adobe)
FirewallRules: [UDP Query User{87BCDA4E-D43B-4EFA-B0C4-159EFBF83A2B}E:\adobe\adobe premiere pro cc 2019\adobe premiere pro.exe] => (Allow) E:\adobe\adobe premiere pro cc 2019\adobe premiere pro.exe (Adobe Systems Incorporated -> Adobe)
FirewallRules: [TCP Query User{2AC23F67-340E-4477-9C8D-581B89656034}C:\users\bogdan placintescu\appdata\local\discord\app-0.0.305\discord.exe] => (Allow) C:\users\bogdan placintescu\appdata\local\discord\app-0.0.305\discord.exe (Discord Inc. -> Discord Inc.)
FirewallRules: [UDP Query User{979AB804-A5DC-4AE9-8624-BC199C0D8D38}C:\users\bogdan placintescu\appdata\local\discord\app-0.0.305\discord.exe] => (Allow) C:\users\bogdan placintescu\appdata\local\discord\app-0.0.305\discord.exe (Discord Inc. -> Discord Inc.)
FirewallRules: [{20E3FF01-D0F9-4F9D-82F1-3B9DAFA9CCF6}] => (Allow) E:\Steam\steamapps\common\ibbandobb\ibbobb.exe () [File not signed]
FirewallRules: [{09E7E88F-CED9-4990-8F14-8C13113FCA5F}] => (Allow) E:\Steam\steamapps\common\ibbandobb\ibbobb.exe () [File not signed]
FirewallRules: [{9C74858B-AF70-46E4-8A61-93A375549A65}] => (Allow) E:\Steam\steamapps\common\Guacamelee\Guac.exe () [File not signed]
FirewallRules: [{CFFE749A-B95C-45D8-B88A-6FC747A51D8C}] => (Allow) E:\Steam\steamapps\common\Guacamelee\Guac.exe () [File not signed]
FirewallRules: [{07A1C087-659D-45F6-BA77-51564926760C}] => (Allow) E:\Steam\steamapps\common\Trine\_enchanted_edition_\trine1_launcher.exe () [File not signed]
FirewallRules: [{8F51FC62-09C6-463A-8364-351963AB5C53}] => (Allow) E:\Steam\steamapps\common\Trine\_enchanted_edition_\trine1_launcher.exe () [File not signed]
FirewallRules: [{98669DE5-4BDA-4CCA-81D1-516ED404AE63}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{8054C34F-F6EB-434B-9F1F-FE93189BC846}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C6BBA658-E130-497F-82FF-8539D56D5E32}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{6D31E3FC-663B-47C7-80D0-468BEDC33ABC}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{66B3C2A6-B4BF-4E08-A876-4796B7CF70EE}] => (Allow) E:\Unity\Editor\Unity.exe (Unity Technologies Aps -> Unity Technologies ApS)
FirewallRules: [{EE72DFB2-D1B8-4EC4-953A-25876DF814C7}] => (Block) E:\Unity\Editor\Unity.exe (Unity Technologies Aps -> Unity Technologies ApS)
FirewallRules: [{AF286E45-934F-4B53-AB11-70CD2B021262}] => (Allow) E:\Steam\steamapps\common\Child of Light\ChildofLight.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [{B890D5AB-B554-40CE-87B7-1A655FC4A6B5}] => (Allow) E:\Steam\steamapps\common\Child of Light\ChildofLight.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [{F17467CC-A914-4D66-A360-73939502FC1C}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{5AB35389-AAB5-4BCA-8BC9-5E19CF2038A2}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{ACEB98C9-8784-4E18-BC62-C62E00EAF7CF}E:\steam\steamapps\common\don't starve together\bin\dontstarve_dedicated_server_nullrenderer.exe] => (Allow) E:\steam\steamapps\common\don't starve together\bin\dontstarve_dedicated_server_nullrenderer.exe () [File not signed]
FirewallRules: [UDP Query User{51E6FF5D-A122-48A5-A8C7-C848C47BB5FA}E:\steam\steamapps\common\don't starve together\bin\dontstarve_dedicated_server_nullrenderer.exe] => (Allow) E:\steam\steamapps\common\don't starve together\bin\dontstarve_dedicated_server_nullrenderer.exe () [File not signed]
FirewallRules: [{9EB7CE78-1B94-4FB0-84A3-E297946B7190}] => (Allow) E:\Steam\steamapps\common\Deponia\deponia.exe (Daedalic Entertainment GmbH) [File not signed]
FirewallRules: [{0157CC16-039B-4461-A28C-432765C6FB76}] => (Allow) E:\Steam\steamapps\common\Deponia\deponia.exe (Daedalic Entertainment GmbH) [File not signed]
FirewallRules: [{2D9A7ADB-5598-49D8-98F7-42EE24BC88DA}] => (Allow) E:\Steam\steamapps\common\Deponia\VisionaireConfigurationTool.exe (Daedalic Entertainment) [File not signed]
FirewallRules: [{E88AAFB9-9FCF-439D-A64B-D87CAEA910EC}] => (Allow) E:\Steam\steamapps\common\Deponia\VisionaireConfigurationTool.exe (Daedalic Entertainment) [File not signed]
FirewallRules: [{2F986C5B-CB17-464D-9F64-FA939F49D090}] => (Allow) E:\Steam\steamapps\common\OxygenNotIncluded\OxygenNotIncluded.exe () [File not signed]
FirewallRules: [{F1A8A532-43B6-4D4A-B6FD-B88734709D62}] => (Allow) E:\Steam\steamapps\common\OxygenNotIncluded\OxygenNotIncluded.exe () [File not signed]
FirewallRules: [{9E0B1846-4C8C-457D-8A3F-948C8E0EAF77}] => (Allow) E:\Steam\steamapps\common\Skyrim\SkyrimLauncher.exe (Bethesda Softworks) [File not signed]
FirewallRules: [{B38E3E65-E480-4467-9B4F-39564337C895}] => (Allow) E:\Steam\steamapps\common\Skyrim\SkyrimLauncher.exe (Bethesda Softworks) [File not signed]
FirewallRules: [{FC5032AB-EC52-4286-BAC5-59A061DDD4F6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{76DA694B-4868-471E-9A37-4B2F926A74B3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{D76868FA-47CE-45FF-9DE9-A550ABA86DA9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{32E9CA96-E805-4024-AAC4-50DB958BBFD5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{000DE515-C6A3-4ADA-B2B9-1D1595542F28}] => (Allow) E:\Steam\steamapps\common\Skyrim\skse_steam_boot.exe () [File not signed]
FirewallRules: [{BFDC95AD-DF34-4E1E-87D4-1D1A2DC105A5}] => (Allow) E:\Steam\steamapps\common\Skyrim\skse_steam_boot.exe () [File not signed]
FirewallRules: [{E4550871-ECD7-4AF4-9D0E-0D6606A0BBEE}] => (Allow) E:\Steam\steamapps\common\Sid Meier's Civilization VI\LaunchPad\LaunchPad.exe () [File not signed]
FirewallRules: [{05875AEF-6A46-41AE-B495-448318154C41}] => (Allow) E:\Steam\steamapps\common\Sid Meier's Civilization VI\LaunchPad\LaunchPad.exe () [File not signed]
FirewallRules: [{4DAA759F-C0A9-4C2E-9DBE-3787DFC450F7}] => (Allow) E:\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe () [File not signed]
FirewallRules: [{63C2F30F-C6B9-4D4F-8975-E103B5045C8C}] => (Allow) E:\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe () [File not signed]
FirewallRules: [{2A6E7C3F-A7E9-4AA5-B9F5-891B447026D4}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.)
FirewallRules: [{07500A28-5FCA-4869-AB52-3667FB4F9089}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{2A32FC19-18FD-4A0C-864B-7909CBDFE2D0}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{757F5980-B458-48D7-AFEA-240E39F3EA12}] => (Allow) E:\Steam\steamapps\common\Starbound\win64\starbound.exe (Chucklefish LTD) [File not signed]
FirewallRules: [{5BA7C2D7-5429-460B-A9D1-455CAB20C42C}] => (Allow) E:\Steam\steamapps\common\Starbound\win64\starbound.exe (Chucklefish LTD) [File not signed]
FirewallRules: [{FFAA8997-DC51-44F9-8E0A-B864D722C04D}] => (Allow) E:\Steam\steamapps\common\Starbound\win64\starbound_server.exe () [File not signed]
FirewallRules: [{F378D407-7885-43C5-AE4E-CA3E8087ED66}] => (Allow) E:\Steam\steamapps\common\Starbound\win64\starbound_server.exe () [File not signed]
FirewallRules: [{967F8FE8-D37B-4059-B541-D3AF037EB8CD}] => (Allow) E:\Steam\steamapps\common\Starbound\win64\mod_uploader.exe () [File not signed]
FirewallRules: [{1FA0FB0D-B7A7-4BD8-8D76-5A5D67E12AFC}] => (Allow) E:\Steam\steamapps\common\Starbound\win64\mod_uploader.exe () [File not signed]
FirewallRules: [{84B39836-35A2-4296-8C70-4DA0A36FBD52}] => (Allow) E:\Steam\steamapps\common\Starbound\win32\starbound.exe (Chucklefish LTD) [File not signed]
FirewallRules: [{0B6C305C-596F-4655-BA1E-814E77395A0F}] => (Allow) E:\Steam\steamapps\common\Starbound\win32\starbound.exe (Chucklefish LTD) [File not signed]
FirewallRules: [{47F4BE44-84F3-440B-9C82-2FE1B89E1C81}] => (Allow) E:\Steam\steamapps\common\DarkestDungeon\_windows\Darkest.exe () [File not signed]
FirewallRules: [{78847DD8-82F9-4DDA-B94E-483B810BEBF7}] => (Allow) E:\Steam\steamapps\common\DarkestDungeon\_windows\Darkest.exe () [File not signed]
==================== Restore Points =========================
16-05-2019 18:16:56 End of disinfection
==================== Faulty Device Manager Devices =============
Name: Standard PS/2 Keyboard
Description: Standard PS/2 Keyboard
Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standard keyboards)
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: Microsoft PS/2 Mouse
Description: Microsoft PS/2 Mouse
Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
==================== Event log errors: =========================
Application errors:
==================
Error: (05/15/2019 09:38:52 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 5969
Error: (05/15/2019 09:38:52 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 5969
Error: (05/15/2019 09:38:52 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (05/15/2019 09:38:50 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 3969
Error: (05/15/2019 09:38:50 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 3969
Error: (05/15/2019 09:38:50 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (05/15/2019 09:38:48 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1984
Error: (05/15/2019 09:38:48 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 1984
System errors:
=============
Error: (05/16/2019 08:36:36 PM) (Source: DCOM) (EventID: 10016) (User: bogdanPC)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
and APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
to the user bogdanPC\Bogdan Placintescu SID (S-1-5-21-1985958338-2759964917-1504332263-1000) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
Error: (05/16/2019 06:21:19 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Launch permission for the COM Server application with CLSID
Windows.SecurityCenter.WscBrokerManager
and APPID
Unavailable
to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
Error: (05/16/2019 06:21:19 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Launch permission for the COM Server application with CLSID
Windows.SecurityCenter.SecurityAppBroker
and APPID
Unavailable
to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
Error: (05/16/2019 06:19:18 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The HP CUE DeviceDiscovery Service service terminated unexpectedly. It has done this 1 time(s).
Error: (05/16/2019 06:19:18 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The hpqcxs08 service terminated unexpectedly. It has done this 1 time(s).
Error: (05/16/2019 06:19:12 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Launch permission for the COM Server application with CLSID
Windows.SecurityCenter.WscDataProtection
and APPID
Unavailable
to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
Error: (05/16/2019 06:19:05 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Apple Mobile Device Service service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion.
Error: (05/16/2019 06:19:05 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device Service service to connect.
Windows Defender:
===================================
Date: 2019-05-16 18:20:40.901
Description:
Windows Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?li...n32/Occamy.C&threatid=2147726780&enterprise=0
Name: Trojan:Win32/Occamy.C
ID: 2147726780
Severity: Severe
Category: Trojan
Path: file:_C:\Windows\System32\tlpless.dll
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: System
Process Name: Unknown
Signature Version: AV: 1.293.1724.0, AS: 1.293.1724.0, NIS: 0.0.0.0
Engine Version: AM: 1.1.15900.4, NIS: 0.0.0.0
Date: 2019-05-16 18:19:59.633
Description:
Windows Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?li...n32/Occamy.C&threatid=2147726780&enterprise=0
Name: Trojan:Win32/Occamy.C
ID: 2147726780
Severity: Severe
Category: Trojan
Path: file:_C:\Windows\System32\tlpless.dll
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: System
Process Name: Unknown
Signature Version: AV: 1.293.1724.0, AS: 1.293.1724.0, NIS: 0.0.0.0
Engine Version: AM: 1.1.15900.4, NIS: 0.0.0.0
Date: 2019-05-15 17:55:37.717
Description:
Windows Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?li...n32/Occamy.C&threatid=2147726780&enterprise=0
Name: Trojan:Win32/Occamy.C
ID: 2147726780
Severity: Severe
Category: Trojan
Path: file:_C:\WINDOWS\System32\tlpless.dll
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: System
Process Name: Unknown
Signature Version: AV: 1.293.1657.0, AS: 1.293.1657.0, NIS: 0.0.0.0
Engine Version: AM: 1.1.15900.4, NIS: 0.0.0.0
Date: 2019-05-15 17:55:19.904
Description:
Windows Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?li...n32/Occamy.C&threatid=2147726780&enterprise=0
Name: Trojan:Win32/Occamy.C
ID: 2147726780
Severity: Severe
Category: Trojan
Path: file:_C:\WINDOWS\System32\tlpless.dll
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: System
Process Name: Unknown
Signature Version: AV: 1.293.1657.0, AS: 1.293.1657.0, NIS: 0.0.0.0
Engine Version: AM: 1.1.15900.4, NIS: 0.0.0.0
Date: 2019-05-15 17:54:56.333
Description:
Windows Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?li...n32/Occamy.C&threatid=2147726780&enterprise=0
Name: Trojan:Win32/Occamy.C
ID: 2147726780
Severity: Severe
Category: Trojan
Path: file:_C:\Windows\System32\tlpless.dll
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: System
Process Name: Unknown
Signature Version: AV: 1.293.1593.0, AS: 1.293.1593.0, NIS: 0.0.0.0
Engine Version: AM: 1.1.15900.4, NIS: 0.0.0.0
==================== Memory info ===========================
BIOS: American Megatrends Inc. A.70 07/24/2016
Motherboard: MSI Z170A GAMING M3 (MS-7978)
Processor: Intel(R) Core(TM) i7-6700 CPU @ 3.40GHz
Percentage of memory in use: 21%
Total physical RAM: 16343.7 MB
Available physical RAM: 12840.36 MB
Total Virtual: 32727.7 MB
Available Virtual: 28830.76 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:222.97 GB) (Free:21.87 GB) NTFS
Drive e: (docs) (Fixed) (Total:465.56 GB) (Free:87.45 GB) NTFS
Drive f: (External HDD) (Fixed) (Total:931.48 GB) (Free:370.17 GB) NTFS
\\?\Volume{0b0b1f86-80f5-11e6-9eaf-806e6f6e6963}\ (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS
\\?\Volume{b8f57f55-0000-0000-0000-a0c437000000}\ () (Fixed) (Total:0.5 GB) (Free:0.08 GB) NTFS
\\?\Volume{f64b6e0d-6061-4478-9504-b6e3c22eadef}\ () (Fixed) (Total:0.2 GB) (Free:0.18 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 223.6 GB) (Disk ID: B8F57F55)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=223 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=509 MB) - (Type=27)
========================================================
Disk: 1 (Protective MBR) (Size: 465.8 GB) (Disk ID: 00000000)
Partition: GPT.
========================================================
Disk: 2 (Size: 931.5 GB) (Disk ID: 16F2A91F)
Partition: GPT.
==================== End of Addition.txt ============================
FirewallRules: [SNMP-In-UDP] => (Allow) %SystemRoot%\system32\snmp.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [SNMP-Out-UDP] => (Allow) %SystemRoot%\system32\snmp.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [SNMP-In-UDP-NoScope] => (Allow) %SystemRoot%\system32\snmp.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [SNMP-Out-UDP-NoScope] => (Allow) %SystemRoot%\system32\snmp.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [UDP Query User{E5C0101A-38E8-4211-AECE-63ED873D7C73}C:\program files (x86)\world of warcraft\_retail_\utils\wowvoiceproxy.exe] => (Allow) C:\program files (x86)\world of warcraft\_retail_\utils\wowvoiceproxy.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{2CE5288E-BB97-4ED9-BF80-CE305BF7D1B3}C:\program files (x86)\world of warcraft\_retail_\utils\wowvoiceproxy.exe] => (Allow) C:\program files (x86)\world of warcraft\_retail_\utils\wowvoiceproxy.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [UDP Query User{FD74DFC6-A2D4-4014-B23A-5DE9E966ECDE}E:\allegorithmic\substance painter\substance painter.exe] => (Allow) E:\allegorithmic\substance painter\substance painter.exe (Allegorithmic -> Allegorithmic) [File not signed]
FirewallRules: [TCP Query User{3957E0C4-666B-4047-85D3-B78457658D33}E:\allegorithmic\substance painter\substance painter.exe] => (Allow) E:\allegorithmic\substance painter\substance painter.exe (Allegorithmic -> Allegorithmic) [File not signed]
FirewallRules: [UDP Query User{9C4D7925-BE60-40ED-9253-4D9090F4E585}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{1DD80A04-5450-4A51-9DFD-75907B800A9A}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{D966DE68-C7E4-47B8-8E11-99E9AA106928}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqfxt08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{5DEE59AB-D1F9-48EE-AAB9-52D96B7241AF}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxs08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{4907D086-2533-4261-9F8D-BC4AD0D4652A}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpzwiz01.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{C87BFE46-265D-4582-A83D-23D6EC35E4FC}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{ED60CE49-98D6-4FAA-A6C5-406714C6F198}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposfx08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{CC8F8BC4-46BD-4080-911A-0298198AC4B0}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxm08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{481C136F-A521-4FA7-81C5-346FA17B0615}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{068134BE-4A61-4D3B-BBDB-15B5F754AD9C}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{2945187A-2ED8-48D7-A9D4-BFB39FC7EA33}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{7AFC3AF4-F185-4489-BF38-4C85915E2363}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqnrs08.exe (Hewlett-Packard Co.) [File not signed]
FirewallRules: [{53053F5E-6CCC-4695-A6B7-363EBC08DD03}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{6E938C60-989A-4235-8A04-EC064B0C216C}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{0B1E12F7-A1EC-4ED5-B0FD-769A4FEDD963}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{0029C7D3-FC75-40E9-B215-CAE110018903}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{695FF91B-BD81-40D2-A872-10DC29667EC5}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{9990B512-9033-4632-962B-9E6F0FF9B62F}] => (Allow) E:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{A71B3A14-D9EE-417D-9F9A-F76D97237122}] => (Allow) E:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [UDP Query User{ECF3A544-D274-46D2-8F9F-B3D463C148E5}E:\hearthstone\hearthstone.exe] => (Allow) E:\hearthstone\hearthstone.exe (Blizzard Entertainment, Inc. -> )
FirewallRules: [TCP Query User{86C54DC8-8370-4C9F-9F01-6726A94E9883}E:\hearthstone\hearthstone.exe] => (Allow) E:\hearthstone\hearthstone.exe (Blizzard Entertainment, Inc. -> )
FirewallRules: [UDP Query User{F99A2CE3-FCC6-4B73-AD59-7A8EA5E65249}C:\users\bogdan placintescu\appdata\roaming\curse client\bin\electron\twitchui.exe] => (Allow) C:\users\bogdan placintescu\appdata\roaming\curse client\bin\electron\twitchui.exe (Twitch Interactive, Inc. -> Twitch Interactive, Inc.)
FirewallRules: [TCP Query User{5D9DAE3E-5AFD-43F4-B795-1189C4A58F4B}C:\users\bogdan placintescu\appdata\roaming\curse client\bin\electron\twitchui.exe] => (Allow) C:\users\bogdan placintescu\appdata\roaming\curse client\bin\electron\twitchui.exe (Twitch Interactive, Inc. -> Twitch Interactive, Inc.)
FirewallRules: [{E4E70CA4-79AE-444D-872B-185233AEF637}] => (Allow) E:\Steam\steamapps\common\DarkestDungeon\_windows\Darkest.exe () [File not signed]
FirewallRules: [{01ACA498-42FE-4B6E-A6B5-28B083059BFC}] => (Allow) E:\Steam\steamapps\common\DarkestDungeon\_windows\Darkest.exe () [File not signed]
FirewallRules: [{FBE47FAB-BF29-4DA2-AC96-AB571DF722C6}] => (Allow) E:\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe () [File not signed]
FirewallRules: [{8C9E912F-ED6A-4ABD-A8C4-6AB3307F76AF}] => (Allow) E:\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe () [File not signed]
FirewallRules: [{DA4B9BB6-B5BC-4052-B58B-AE24B46834DC}] => (Allow) E:\Steam\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI_DX12.exe (Firaxis Games) [File not signed]
FirewallRules: [{1F119452-E557-4445-AADC-DB4D7AB6D0FD}] => (Allow) E:\Steam\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI_DX12.exe (Firaxis Games) [File not signed]
FirewallRules: [{1952CCE2-F0E4-4479-AD90-DB5BE1E060BC}] => (Allow) E:\Steam\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI.exe (Firaxis Games) [File not signed]
FirewallRules: [{3082CAAF-25FD-49C4-89D9-1C1BC1E1826E}] => (Allow) E:\Steam\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI.exe (Firaxis Games) [File not signed]
FirewallRules: [{936D8974-7DBC-4C35-8998-F8175679F357}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{0B92DCAA-4F9A-4695-BF59-7A3773C9CDC2}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [UDP Query User{A3D554A6-B6EB-4BA0-8D81-4351CACDA310}E:\allegorithmic\substance painter\substance painter.exe] => (Allow) E:\allegorithmic\substance painter\substance painter.exe (Allegorithmic -> Allegorithmic) [File not signed]
FirewallRules: [TCP Query User{80888C66-AF42-4799-9512-66ADEBB887CD}E:\allegorithmic\substance painter\substance painter.exe] => (Allow) E:\allegorithmic\substance painter\substance painter.exe (Allegorithmic -> Allegorithmic) [File not signed]
FirewallRules: [{9952BCF0-541F-46C5-BFD1-A92EB03D4746}] => (Allow) C:\Users\Bogdan Placintescu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{CC61D9BD-667F-4F68-B606-700EED46CF60}] => (Allow) C:\Users\Bogdan Placintescu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{DC8C7E3C-63F8-4FAC-9907-3FE424E373BE}] => (Allow) E:\Steam\steamapps\common\Prey\Binaries\Danielle\x64\Release\Prey.exe (Arkane Studios) [File not signed]
FirewallRules: [{900E8856-8C4C-4A6D-87BA-A8F4440DE3E4}] => (Allow) E:\Steam\steamapps\common\Prey\Binaries\Danielle\x64\Release\Prey.exe (Arkane Studios) [File not signed]
FirewallRules: [{24896A34-B233-48AC-BAF3-8203A0F4D79B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{A5AA78BA-A7F5-48DC-BD9F-AA26CCA58F8B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{4E60C5B0-D6D4-4AF7-88F8-EF70749DB68E}] => (Allow) LPort=5000
FirewallRules: [{E57768F3-6BEA-4CE5-BE54-3FDB436B596F}] => (Allow) LPort=59586
FirewallRules: [{E0F90972-3518-49ED-9EE0-5B9C6967A7CC}] => (Allow) LPort=1688
FirewallRules: [UDP Query User{8D4E3803-0276-4B3E-BE62-9F670DB170C6}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [TCP Query User{FF1846EF-3B7B-4B6F-B5B8-2D60171C9811}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [{59DCFC2A-2D8F-49E1-A7DE-42CC69474DEF}] => (Allow) E:\Steam\steamapps\common\SunlessSea\Sunless Sea.exe () [File not signed]
FirewallRules: [{BB8B0F52-9E5A-4896-B1C2-98DFFFC6A49B}] => (Allow) E:\Steam\steamapps\common\SunlessSea\Sunless Sea.exe () [File not signed]
FirewallRules: [{9DC32FCD-7E69-4A9B-9EBD-D97CA5F19956}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{FC8D9118-5615-4281-AF76-8013F0AE2904}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{A0468DAA-07B3-45B7-ABC8-24CD6D6E5152}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{1559B79B-484E-4E2E-92AE-54208A476BB6}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [UDP Query User{9D61AE8C-4AF1-4555-BBED-29F5668210C3}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{3C8D00F2-898D-42A0-B861-51A3F5F57552}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [UDP Query User{F145B7B7-30AC-4BBD-989D-B22CA4F8B266}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [TCP Query User{2CC356DB-914A-41AB-A2A4-856146BAC8BC}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [{1AAC8385-A436-4925-AAFE-05465E6CC250}] => (Allow) LPort=26789
FirewallRules: [{19FCCD91-9284-43E7-B2AF-620E32C1DD75}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{06BD4593-FDDE-4BD9-8302-202A18045465}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{5E16FF0C-0EDF-4622-B2A5-2101E0228593}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{7609B846-BBE6-4715-9E61-666EE3E815DC}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{76E51E45-2754-4024-9D46-1F580539CE52}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{890A1116-5FD0-4B26-9EBC-E2011384D357}] => (Allow) E:\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{492BCAF6-351D-474F-82D3-5F0D931FE66E}] => (Allow) E:\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{E6638D4B-88E8-4C06-ACCF-7F716E7312DB}] => (Allow) C:\Users\Bogdan Placintescu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{DCE10A1A-9848-4A34-98F4-84C2B8557C4B}] => (Allow) C:\Users\Bogdan Placintescu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{BC49470B-7C7B-409B-BABA-824145009F18}] => (Allow) C:\Users\Bogdan Placintescu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{60B48FF1-C0EA-4EE6-B83F-3DC2E0E1D1B8}] => (Allow) C:\Users\Bogdan Placintescu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{E9487C1B-7085-432E-9E38-549F4DD9FA8A}] => (Allow) C:\Users\Bogdan Placintescu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{42B0B290-E2AD-4A8D-BFB7-8AD2C604B41B}] => (Allow) C:\Users\Bogdan Placintescu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{9640246B-2365-43B7-B35A-2732E13EDB1F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [TCP Query User{D69F3DA6-368F-4716-9D8A-8ABFDA34CD28}E:\steam\steamapps\common\don't starve together\bin\dontstarve_dedicated_server_nullrenderer.exe] => (Allow) E:\steam\steamapps\common\don't starve together\bin\dontstarve_dedicated_server_nullrenderer.exe () [File not signed]
FirewallRules: [UDP Query User{10F50A44-94F4-4C44-85E8-530B3907495C}E:\steam\steamapps\common\don't starve together\bin\dontstarve_dedicated_server_nullrenderer.exe] => (Allow) E:\steam\steamapps\common\don't starve together\bin\dontstarve_dedicated_server_nullrenderer.exe () [File not signed]
FirewallRules: [TCP Query User{928EA6DB-F4FF-4350-8B44-EB7298AD002B}E:\hearthstone\hearthstone.exe] => (Allow) E:\hearthstone\hearthstone.exe (Blizzard Entertainment, Inc. -> )
FirewallRules: [UDP Query User{98542EE1-D763-4AA2-A239-0711A3C0E571}E:\hearthstone\hearthstone.exe] => (Allow) E:\hearthstone\hearthstone.exe (Blizzard Entertainment, Inc. -> )
FirewallRules: [{73A8ACCD-AF33-4A0A-A902-42DAC0D1D189}] => (Allow) E:\Program Files (x86)\Origin Games\Spore\Sporebin\SporeApp.exe (Electronic Arts -> Maxis, a division of Electronic Arts Inc.)
FirewallRules: [{76DF158C-D7CD-45B8-893D-2B3536E6E2AA}] => (Allow) E:\Program Files (x86)\Origin Games\Spore\Sporebin\SporeApp.exe (Electronic Arts -> Maxis, a division of Electronic Arts Inc.)
FirewallRules: [{57EE87AD-7463-4510-9D60-FEEDC0661E2D}] => (Allow) E:\Steam\steamapps\common\Pyre\x64\Pyre.exe (Supergiant Games, LLC) [File not signed]
FirewallRules: [{70CB7038-842A-4350-B9B4-A974F4712BF3}] => (Allow) E:\Steam\steamapps\common\Pyre\x64\Pyre.exe (Supergiant Games, LLC) [File not signed]
FirewallRules: [{3F9ECFE0-0452-4BE8-9FDD-68970A4D9858}] => (Allow) E:\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )
FirewallRules: [{BFF0AEA2-542C-47F6-9083-868EBA67C083}] => (Allow) E:\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> )
FirewallRules: [TCP Query User{6AC7E872-90D8-48B4-B60C-AADA6EEC24AB}C:\program files (x86)\obs-studio\bin\64bit\obs64.exe] => (Allow) C:\program files (x86)\obs-studio\bin\64bit\obs64.exe (Open Source Developer, Hugh Bailey -> )
FirewallRules: [UDP Query User{D883269A-3442-4AE7-882A-E47BFAF896C0}C:\program files (x86)\obs-studio\bin\64bit\obs64.exe] => (Allow) C:\program files (x86)\obs-studio\bin\64bit\obs64.exe (Open Source Developer, Hugh Bailey -> )
FirewallRules: [TCP Query User{049D4D41-1EE2-47E3-9C5A-8C2392366AF7}C:\users\bogdan placintescu\appdata\roaming\curse client\bin\electron\twitchui.exe] => (Allow) C:\users\bogdan placintescu\appdata\roaming\curse client\bin\electron\twitchui.exe (Twitch Interactive, Inc. -> Twitch Interactive, Inc.)
FirewallRules: [UDP Query User{E3A13891-1733-4D5B-85EB-DBDA7D565D69}C:\users\bogdan placintescu\appdata\roaming\curse client\bin\electron\twitchui.exe] => (Allow) C:\users\bogdan placintescu\appdata\roaming\curse client\bin\electron\twitchui.exe (Twitch Interactive, Inc. -> Twitch Interactive, Inc.)
FirewallRules: [{B6C54721-004D-4B49-869F-3C55FA46E6ED}] => (Allow) E:\Steam\steamapps\common\SpeedRunners\SpeedRunners.exe (DoubleDutch Games) [File not signed]
FirewallRules: [{A8DE337F-60FB-40A7-97D4-23965DF620AB}] => (Allow) E:\Steam\steamapps\common\SpeedRunners\SpeedRunners.exe (DoubleDutch Games) [File not signed]
FirewallRules: [{A58CE737-0A1D-405A-BDD2-435CB91B6CF9}] => (Allow) E:\Steam\steamapps\common\SpaceChem\SpaceChem.exe (Zachtronics Industries) [File not signed]
FirewallRules: [{15E339B0-6723-486B-A4A7-4600A892A611}] => (Allow) E:\Steam\steamapps\common\SpaceChem\SpaceChem.exe (Zachtronics Industries) [File not signed]
FirewallRules: [TCP Query User{C5627A92-75C6-41D6-9C41-071FB029B00E}C:\users\bogdan placintescu\appdata\local\discord\app-0.0.304\discord.exe] => (Allow) C:\users\bogdan placintescu\appdata\local\discord\app-0.0.304\discord.exe (Discord Inc. -> Discord Inc.)
FirewallRules: [UDP Query User{7FA54D8B-0DBB-4E91-99BF-C99869A991A9}C:\users\bogdan placintescu\appdata\local\discord\app-0.0.304\discord.exe] => (Allow) C:\users\bogdan placintescu\appdata\local\discord\app-0.0.304\discord.exe (Discord Inc. -> Discord Inc.)
FirewallRules: [{CDA9BD85-7908-401F-8C37-31FA0AF75CE3}] => (Allow) E:\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{873DB2B0-9710-4C11-BDA6-229B3FA9C22E}] => (Allow) E:\Steam\steamapps\common\Aseprite\Aseprite.exe (David Capello -> )
FirewallRules: [{02F947AB-AFA7-40F7-9B5C-8E99FC007F4F}] => (Allow) E:\Steam\steamapps\common\Aseprite\Aseprite.exe (David Capello -> )
FirewallRules: [{64FF1E53-93B6-4B26-AE2C-528F1B3F81EF}] => (Allow) E:\Steam\steamapps\common\Reigns\Reigns.exe () [File not signed]
FirewallRules: [{64C4B4D8-FDB2-49E9-AEBA-27FCB2B2030C}] => (Allow) E:\Steam\steamapps\common\Reigns\Reigns.exe () [File not signed]
FirewallRules: [{4AA002D8-248C-4FC7-8CB1-CBF24B55A023}] => (Allow) E:\Steam\steamapps\common\Hollow Knight\hollow_knight.exe () [File not signed]
FirewallRules: [{437AEFAC-F645-43C6-87B0-F01F22C0FBD8}] => (Allow) E:\Steam\steamapps\common\Hollow Knight\hollow_knight.exe () [File not signed]
FirewallRules: [TCP Query User{01CC4CD7-CACE-426D-9841-6A5F920B05D7}E:\adobe\adobe premiere pro cc 2019\adobe premiere pro.exe] => (Allow) E:\adobe\adobe premiere pro cc 2019\adobe premiere pro.exe (Adobe Systems Incorporated -> Adobe)
FirewallRules: [UDP Query User{87BCDA4E-D43B-4EFA-B0C4-159EFBF83A2B}E:\adobe\adobe premiere pro cc 2019\adobe premiere pro.exe] => (Allow) E:\adobe\adobe premiere pro cc 2019\adobe premiere pro.exe (Adobe Systems Incorporated -> Adobe)
FirewallRules: [TCP Query User{2AC23F67-340E-4477-9C8D-581B89656034}C:\users\bogdan placintescu\appdata\local\discord\app-0.0.305\discord.exe] => (Allow) C:\users\bogdan placintescu\appdata\local\discord\app-0.0.305\discord.exe (Discord Inc. -> Discord Inc.)
FirewallRules: [UDP Query User{979AB804-A5DC-4AE9-8624-BC199C0D8D38}C:\users\bogdan placintescu\appdata\local\discord\app-0.0.305\discord.exe] => (Allow) C:\users\bogdan placintescu\appdata\local\discord\app-0.0.305\discord.exe (Discord Inc. -> Discord Inc.)
FirewallRules: [{20E3FF01-D0F9-4F9D-82F1-3B9DAFA9CCF6}] => (Allow) E:\Steam\steamapps\common\ibbandobb\ibbobb.exe () [File not signed]
FirewallRules: [{09E7E88F-CED9-4990-8F14-8C13113FCA5F}] => (Allow) E:\Steam\steamapps\common\ibbandobb\ibbobb.exe () [File not signed]
FirewallRules: [{9C74858B-AF70-46E4-8A61-93A375549A65}] => (Allow) E:\Steam\steamapps\common\Guacamelee\Guac.exe () [File not signed]
FirewallRules: [{CFFE749A-B95C-45D8-B88A-6FC747A51D8C}] => (Allow) E:\Steam\steamapps\common\Guacamelee\Guac.exe () [File not signed]
FirewallRules: [{07A1C087-659D-45F6-BA77-51564926760C}] => (Allow) E:\Steam\steamapps\common\Trine\_enchanted_edition_\trine1_launcher.exe () [File not signed]
FirewallRules: [{8F51FC62-09C6-463A-8364-351963AB5C53}] => (Allow) E:\Steam\steamapps\common\Trine\_enchanted_edition_\trine1_launcher.exe () [File not signed]
FirewallRules: [{98669DE5-4BDA-4CCA-81D1-516ED404AE63}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{8054C34F-F6EB-434B-9F1F-FE93189BC846}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C6BBA658-E130-497F-82FF-8539D56D5E32}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{6D31E3FC-663B-47C7-80D0-468BEDC33ABC}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{66B3C2A6-B4BF-4E08-A876-4796B7CF70EE}] => (Allow) E:\Unity\Editor\Unity.exe (Unity Technologies Aps -> Unity Technologies ApS)
FirewallRules: [{EE72DFB2-D1B8-4EC4-953A-25876DF814C7}] => (Block) E:\Unity\Editor\Unity.exe (Unity Technologies Aps -> Unity Technologies ApS)
FirewallRules: [{AF286E45-934F-4B53-AB11-70CD2B021262}] => (Allow) E:\Steam\steamapps\common\Child of Light\ChildofLight.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [{B890D5AB-B554-40CE-87B7-1A655FC4A6B5}] => (Allow) E:\Steam\steamapps\common\Child of Light\ChildofLight.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [{F17467CC-A914-4D66-A360-73939502FC1C}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{5AB35389-AAB5-4BCA-8BC9-5E19CF2038A2}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{ACEB98C9-8784-4E18-BC62-C62E00EAF7CF}E:\steam\steamapps\common\don't starve together\bin\dontstarve_dedicated_server_nullrenderer.exe] => (Allow) E:\steam\steamapps\common\don't starve together\bin\dontstarve_dedicated_server_nullrenderer.exe () [File not signed]
FirewallRules: [UDP Query User{51E6FF5D-A122-48A5-A8C7-C848C47BB5FA}E:\steam\steamapps\common\don't starve together\bin\dontstarve_dedicated_server_nullrenderer.exe] => (Allow) E:\steam\steamapps\common\don't starve together\bin\dontstarve_dedicated_server_nullrenderer.exe () [File not signed]
FirewallRules: [{9EB7CE78-1B94-4FB0-84A3-E297946B7190}] => (Allow) E:\Steam\steamapps\common\Deponia\deponia.exe (Daedalic Entertainment GmbH) [File not signed]
FirewallRules: [{0157CC16-039B-4461-A28C-432765C6FB76}] => (Allow) E:\Steam\steamapps\common\Deponia\deponia.exe (Daedalic Entertainment GmbH) [File not signed]
FirewallRules: [{2D9A7ADB-5598-49D8-98F7-42EE24BC88DA}] => (Allow) E:\Steam\steamapps\common\Deponia\VisionaireConfigurationTool.exe (Daedalic Entertainment) [File not signed]
FirewallRules: [{E88AAFB9-9FCF-439D-A64B-D87CAEA910EC}] => (Allow) E:\Steam\steamapps\common\Deponia\VisionaireConfigurationTool.exe (Daedalic Entertainment) [File not signed]
FirewallRules: [{2F986C5B-CB17-464D-9F64-FA939F49D090}] => (Allow) E:\Steam\steamapps\common\OxygenNotIncluded\OxygenNotIncluded.exe () [File not signed]
FirewallRules: [{F1A8A532-43B6-4D4A-B6FD-B88734709D62}] => (Allow) E:\Steam\steamapps\common\OxygenNotIncluded\OxygenNotIncluded.exe () [File not signed]
FirewallRules: [{9E0B1846-4C8C-457D-8A3F-948C8E0EAF77}] => (Allow) E:\Steam\steamapps\common\Skyrim\SkyrimLauncher.exe (Bethesda Softworks) [File not signed]
FirewallRules: [{B38E3E65-E480-4467-9B4F-39564337C895}] => (Allow) E:\Steam\steamapps\common\Skyrim\SkyrimLauncher.exe (Bethesda Softworks) [File not signed]
FirewallRules: [{FC5032AB-EC52-4286-BAC5-59A061DDD4F6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{76DA694B-4868-471E-9A37-4B2F926A74B3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{D76868FA-47CE-45FF-9DE9-A550ABA86DA9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{32E9CA96-E805-4024-AAC4-50DB958BBFD5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{000DE515-C6A3-4ADA-B2B9-1D1595542F28}] => (Allow) E:\Steam\steamapps\common\Skyrim\skse_steam_boot.exe () [File not signed]
FirewallRules: [{BFDC95AD-DF34-4E1E-87D4-1D1A2DC105A5}] => (Allow) E:\Steam\steamapps\common\Skyrim\skse_steam_boot.exe () [File not signed]
FirewallRules: [{E4550871-ECD7-4AF4-9D0E-0D6606A0BBEE}] => (Allow) E:\Steam\steamapps\common\Sid Meier's Civilization VI\LaunchPad\LaunchPad.exe () [File not signed]
FirewallRules: [{05875AEF-6A46-41AE-B495-448318154C41}] => (Allow) E:\Steam\steamapps\common\Sid Meier's Civilization VI\LaunchPad\LaunchPad.exe () [File not signed]
FirewallRules: [{4DAA759F-C0A9-4C2E-9DBE-3787DFC450F7}] => (Allow) E:\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe () [File not signed]
FirewallRules: [{63C2F30F-C6B9-4D4F-8975-E103B5045C8C}] => (Allow) E:\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe () [File not signed]
FirewallRules: [{2A6E7C3F-A7E9-4AA5-B9F5-891B447026D4}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.)
FirewallRules: [{07500A28-5FCA-4869-AB52-3667FB4F9089}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{2A32FC19-18FD-4A0C-864B-7909CBDFE2D0}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{757F5980-B458-48D7-AFEA-240E39F3EA12}] => (Allow) E:\Steam\steamapps\common\Starbound\win64\starbound.exe (Chucklefish LTD) [File not signed]
FirewallRules: [{5BA7C2D7-5429-460B-A9D1-455CAB20C42C}] => (Allow) E:\Steam\steamapps\common\Starbound\win64\starbound.exe (Chucklefish LTD) [File not signed]
FirewallRules: [{FFAA8997-DC51-44F9-8E0A-B864D722C04D}] => (Allow) E:\Steam\steamapps\common\Starbound\win64\starbound_server.exe () [File not signed]
FirewallRules: [{F378D407-7885-43C5-AE4E-CA3E8087ED66}] => (Allow) E:\Steam\steamapps\common\Starbound\win64\starbound_server.exe () [File not signed]
FirewallRules: [{967F8FE8-D37B-4059-B541-D3AF037EB8CD}] => (Allow) E:\Steam\steamapps\common\Starbound\win64\mod_uploader.exe () [File not signed]
FirewallRules: [{1FA0FB0D-B7A7-4BD8-8D76-5A5D67E12AFC}] => (Allow) E:\Steam\steamapps\common\Starbound\win64\mod_uploader.exe () [File not signed]
FirewallRules: [{84B39836-35A2-4296-8C70-4DA0A36FBD52}] => (Allow) E:\Steam\steamapps\common\Starbound\win32\starbound.exe (Chucklefish LTD) [File not signed]
FirewallRules: [{0B6C305C-596F-4655-BA1E-814E77395A0F}] => (Allow) E:\Steam\steamapps\common\Starbound\win32\starbound.exe (Chucklefish LTD) [File not signed]
FirewallRules: [{47F4BE44-84F3-440B-9C82-2FE1B89E1C81}] => (Allow) E:\Steam\steamapps\common\DarkestDungeon\_windows\Darkest.exe () [File not signed]
FirewallRules: [{78847DD8-82F9-4DDA-B94E-483B810BEBF7}] => (Allow) E:\Steam\steamapps\common\DarkestDungeon\_windows\Darkest.exe () [File not signed]
==================== Restore Points =========================
16-05-2019 18:16:56 End of disinfection
==================== Faulty Device Manager Devices =============
Name: Standard PS/2 Keyboard
Description: Standard PS/2 Keyboard
Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standard keyboards)
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: Microsoft PS/2 Mouse
Description: Microsoft PS/2 Mouse
Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
==================== Event log errors: =========================
Application errors:
==================
Error: (05/15/2019 09:38:52 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 5969
Error: (05/15/2019 09:38:52 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 5969
Error: (05/15/2019 09:38:52 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (05/15/2019 09:38:50 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 3969
Error: (05/15/2019 09:38:50 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 3969
Error: (05/15/2019 09:38:50 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (05/15/2019 09:38:48 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1984
Error: (05/15/2019 09:38:48 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 1984
System errors:
=============
Error: (05/16/2019 08:36:36 PM) (Source: DCOM) (EventID: 10016) (User: bogdanPC)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
and APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
to the user bogdanPC\Bogdan Placintescu SID (S-1-5-21-1985958338-2759964917-1504332263-1000) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
Error: (05/16/2019 06:21:19 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Launch permission for the COM Server application with CLSID
Windows.SecurityCenter.WscBrokerManager
and APPID
Unavailable
to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
Error: (05/16/2019 06:21:19 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Launch permission for the COM Server application with CLSID
Windows.SecurityCenter.SecurityAppBroker
and APPID
Unavailable
to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
Error: (05/16/2019 06:19:18 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The HP CUE DeviceDiscovery Service service terminated unexpectedly. It has done this 1 time(s).
Error: (05/16/2019 06:19:18 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The hpqcxs08 service terminated unexpectedly. It has done this 1 time(s).
Error: (05/16/2019 06:19:12 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Launch permission for the COM Server application with CLSID
Windows.SecurityCenter.WscDataProtection
and APPID
Unavailable
to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
Error: (05/16/2019 06:19:05 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Apple Mobile Device Service service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion.
Error: (05/16/2019 06:19:05 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Apple Mobile Device Service service to connect.
Windows Defender:
===================================
Date: 2019-05-16 18:20:40.901
Description:
Windows Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?li...n32/Occamy.C&threatid=2147726780&enterprise=0
Name: Trojan:Win32/Occamy.C
ID: 2147726780
Severity: Severe
Category: Trojan
Path: file:_C:\Windows\System32\tlpless.dll
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: System
Process Name: Unknown
Signature Version: AV: 1.293.1724.0, AS: 1.293.1724.0, NIS: 0.0.0.0
Engine Version: AM: 1.1.15900.4, NIS: 0.0.0.0
Date: 2019-05-16 18:19:59.633
Description:
Windows Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?li...n32/Occamy.C&threatid=2147726780&enterprise=0
Name: Trojan:Win32/Occamy.C
ID: 2147726780
Severity: Severe
Category: Trojan
Path: file:_C:\Windows\System32\tlpless.dll
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: System
Process Name: Unknown
Signature Version: AV: 1.293.1724.0, AS: 1.293.1724.0, NIS: 0.0.0.0
Engine Version: AM: 1.1.15900.4, NIS: 0.0.0.0
Date: 2019-05-15 17:55:37.717
Description:
Windows Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?li...n32/Occamy.C&threatid=2147726780&enterprise=0
Name: Trojan:Win32/Occamy.C
ID: 2147726780
Severity: Severe
Category: Trojan
Path: file:_C:\WINDOWS\System32\tlpless.dll
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: System
Process Name: Unknown
Signature Version: AV: 1.293.1657.0, AS: 1.293.1657.0, NIS: 0.0.0.0
Engine Version: AM: 1.1.15900.4, NIS: 0.0.0.0
Date: 2019-05-15 17:55:19.904
Description:
Windows Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?li...n32/Occamy.C&threatid=2147726780&enterprise=0
Name: Trojan:Win32/Occamy.C
ID: 2147726780
Severity: Severe
Category: Trojan
Path: file:_C:\WINDOWS\System32\tlpless.dll
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: System
Process Name: Unknown
Signature Version: AV: 1.293.1657.0, AS: 1.293.1657.0, NIS: 0.0.0.0
Engine Version: AM: 1.1.15900.4, NIS: 0.0.0.0
Date: 2019-05-15 17:54:56.333
Description:
Windows Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?li...n32/Occamy.C&threatid=2147726780&enterprise=0
Name: Trojan:Win32/Occamy.C
ID: 2147726780
Severity: Severe
Category: Trojan
Path: file:_C:\Windows\System32\tlpless.dll
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: System
Process Name: Unknown
Signature Version: AV: 1.293.1593.0, AS: 1.293.1593.0, NIS: 0.0.0.0
Engine Version: AM: 1.1.15900.4, NIS: 0.0.0.0
==================== Memory info ===========================
BIOS: American Megatrends Inc. A.70 07/24/2016
Motherboard: MSI Z170A GAMING M3 (MS-7978)
Processor: Intel(R) Core(TM) i7-6700 CPU @ 3.40GHz
Percentage of memory in use: 21%
Total physical RAM: 16343.7 MB
Available physical RAM: 12840.36 MB
Total Virtual: 32727.7 MB
Available Virtual: 28830.76 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:222.97 GB) (Free:21.87 GB) NTFS
Drive e: (docs) (Fixed) (Total:465.56 GB) (Free:87.45 GB) NTFS
Drive f: (External HDD) (Fixed) (Total:931.48 GB) (Free:370.17 GB) NTFS
\\?\Volume{0b0b1f86-80f5-11e6-9eaf-806e6f6e6963}\ (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS
\\?\Volume{b8f57f55-0000-0000-0000-a0c437000000}\ () (Fixed) (Total:0.5 GB) (Free:0.08 GB) NTFS
\\?\Volume{f64b6e0d-6061-4478-9504-b6e3c22eadef}\ () (Fixed) (Total:0.2 GB) (Free:0.18 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 223.6 GB) (Disk ID: B8F57F55)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=223 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=509 MB) - (Type=27)
========================================================
Disk: 1 (Protective MBR) (Size: 465.8 GB) (Disk ID: 00000000)
Partition: GPT.
========================================================
Disk: 2 (Size: 931.5 GB) (Disk ID: 16F2A91F)
Partition: GPT.
==================== End of Addition.txt ============================